Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hw5v-77jj-prp8

Опубликовано: 31 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The WP STAGING WordPress Backup Plugin WordPress plugin before 3.5.0 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.

The WP STAGING WordPress Backup Plugin WordPress plugin before 3.5.0 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.

EPSS

Процентиль: 71%
0.00687
Низкий

7.5 High

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

The WP STAGING WordPress Backup Plugin WordPress plugin before 3.5.0 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.

EPSS

Процентиль: 71%
0.00687
Низкий

7.5 High

CVSS3

Дефекты

CWE-918